Thanks for sticking with me..
CF noted a few files to write down:
C:\WINDOWS\system32\drivers\kbiwkmgsnvmetq.sys
C:\WINDOWS\system32\kbiwkmltoieaqb.dll
C:\WINDOWS\system32\kbiwkmwulbqlrs.dat
C:\WINDOWS\system32\kbiwkmjtkmoygy.dll
C:\WINDOWS\system32\kbiwkmtjxjdsvx.dat
Here are the logs
Shufly
ComboFix 09-09-18.02 - Owner 09/06/2009 10:38.1.2 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.1.1252.1.1033.18.503.205 [GMT -7:00]
Running from: c:\documents and settings\Owner\Desktop\Combo-Fix.exe
* Created a new restore point
* Resident AV is active
.
((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.
c:\documents and settings\All Users\Application Data\Starware406
c:\documents and settings\All Users\Application Data\Starware406\buttons\1270_button_1b_def.bmp
c:\documents and settings\All Users\Application Data\Starware406\buttons\1271_button_1b_def.bmp
c:\documents and settings\All Users\Application Data\Starware406\buttons\1271_button_1b_over.bmp
c:\documents and settings\All Users\Application Data\Starware406\buttons\Button_50.bmp
c:\documents and settings\All Users\Application Data\Starware406\buttons\Button_60.bmp
c:\documents and settings\All Users\Application Data\Starware406\buttons\Button_70.bmp
c:\documents and settings\All Users\Application Data\Starware406\buttons\FindIt.bmp
c:\documents and settings\All Users\Application Data\Starware406\buttons\FindItHot.bmp
c:\documents and settings\All Users\Application Data\Starware406\buttons\findithotxp.png
c:\documents and settings\All Users\Application Data\Starware406\buttons\finditxp.png
c:\documents and settings\All Users\Application Data\Starware406\buttons\logo.bmp
c:\documents and settings\All Users\Application Data\Starware406\buttons\logoxp.bmp
c:\documents and settings\All Users\Application Data\Starware406\buttons\Weather.bmp
c:\documents and settings\All Users\Application Data\Starware406\buttons\WeatherHot.bmp
c:\documents and settings\All Users\Application Data\Starware406\buttons\weatherhotxp.png
c:\documents and settings\All Users\Application Data\Starware406\buttons\weatherxp.png
c:\documents and settings\All Users\Application Data\Starware406\contexts\error.xml
c:\documents and settings\All Users\Application Data\Starware406\contexts\Related.xml
c:\documents and settings\All Users\Application Data\Starware406\contexts\Travel.xml
c:\documents and settings\All Users\Application Data\Starware406\images\walertXP.bmp
c:\documents and settings\All Users\Application Data\Starware406\SimpleUpdate\ProductMessagingConfig.xml
c:\documents and settings\All Users\Application Data\Starware406\SimpleUpdate\ProductMessagingConfig.xml.backup
c:\documents and settings\All Users\Application Data\Starware406\SimpleUpdate\SimpleUpdateConfig.xml
c:\documents and settings\All Users\Application Data\Starware406\SimpleUpdate\SimpleUpdateConfig.xml.backup
c:\documents and settings\All Users\Application Data\Starware406\SimpleUpdate\TimerManagerConfig.xml
c:\documents and settings\All Users\Application Data\Starware406\SimpleUpdate\TimerManagerConfig.xml.backup
c:\documents and settings\Owner\Application Data\Starware406
c:\documents and settings\Owner\Application Data\Starware406\BrowserSearch\BrowserSearch.xml
c:\documents and settings\Owner\Application Data\Starware406\BrowserSearch\BrowserSearch.xml.backup
c:\documents and settings\Owner\Application Data\Starware406\Button_5\Button_5Options.xml
c:\documents and settings\Owner\Application Data\Starware406\Button_5\Button_5Options.xml.backup
c:\documents and settings\Owner\Application Data\Starware406\Button_6\Button_6Options.xml
c:\documents and settings\Owner\Application Data\Starware406\Button_6\Button_6Options.xml.backup
c:\documents and settings\Owner\Application Data\Starware406\Button_7\Button_7Options.xml
c:\documents and settings\Owner\Application Data\Starware406\Button_7\Button_7Options.xml.backup
c:\documents and settings\Owner\Application Data\Starware406\Casual_Games_News\Casual_Games_NewsOptions.xml
c:\documents and settings\Owner\Application Data\Starware406\Casual_Games_News\Casual_Games_NewsOptions.xml.backup
c:\documents and settings\Owner\Application Data\Starware406\Configurator\Configurator.xml
c:\documents and settings\Owner\Application Data\Starware406\Configurator\Configurator.xml.backup
c:\documents and settings\Owner\Application Data\Starware406\ErrorSearch\ErrorSearchOptions.xml
c:\documents and settings\Owner\Application Data\Starware406\ErrorSearch\ErrorSearchOptions.xml.backup
c:\documents and settings\Owner\Application Data\Starware406\Layouts\ToolbarLayout.xml
c:\documents and settings\Owner\Application Data\Starware406\Layouts\ToolbarLayout.xml.backup
c:\documents and settings\Owner\Application Data\Starware406\Manager\ManagerOptions.xml
c:\documents and settings\Owner\Application Data\Starware406\Manager\ManagerOptions.xml.backup
c:\documents and settings\Owner\Application Data\Starware406\Play_Games\Play_GamesOptions.xml
c:\documents and settings\Owner\Application Data\Starware406\Play_Games\Play_GamesOptions.xml.backup
c:\documents and settings\Owner\Application Data\Starware406\RelatedSearch\RelatedSearchOptions.xml
c:\documents and settings\Owner\Application Data\Starware406\RelatedSearch\RelatedSearchOptions.xml.backup
c:\documents and settings\Owner\Application Data\Starware406\Toolbar\TBProductsOptions.xml
c:\documents and settings\Owner\Application Data\Starware406\Toolbar\TBProductsOptions.xml.backup
c:\documents and settings\Owner\Application Data\Starware406\ToolbarLogo\ToolbarLogoOptions.xml
c:\documents and settings\Owner\Application Data\Starware406\ToolbarLogo\ToolbarLogoOptions.xml.backup
c:\documents and settings\Owner\Application Data\Starware406\ToolbarSearch\ToolbarSearchOptions.xml
c:\documents and settings\Owner\Application Data\Starware406\ToolbarSearch\ToolbarSearchOptions.xml.backup
c:\documents and settings\Owner\Application Data\Starware406\TravelSearch\TravelSearchOptions.xml
c:\documents and settings\Owner\Application Data\Starware406\TravelSearch\TravelSearchOptions.xml.backup
c:\documents and settings\Owner\Application Data\Starware406\Weather\AlertArchive.xml
c:\documents and settings\Owner\Application Data\Starware406\Weather\WeatherOptions.xml
c:\documents and settings\Owner\Application Data\Starware406\Weather\WeatherOptions.xml.backup
c:\program files\Starware406
c:\program files\Starware406\icons\star_16.ico
c:\program files\Starware406\Starware406Config.xml
c:\program files\Starware406\Starware406Uninstall.exe
c:\recycler\S-1-5-21-1403980995-2275803279-3484923586-1003
c:\recycler\S-1-5-21-4035973818-1636916862-1361887999-1003
c:\windows\COUPON~1.OCX
c:\windows\CouponPrinter.ocx
c:\windows\Installer\2282d20.msp
c:\windows\Installer\2282d35.msp
c:\windows\Installer\2282d3c.msi
c:\windows\Installer\2282d4f.msp
c:\windows\Installer\2282d63.msp
c:\windows\Installer\244050.msi
c:\windows\Installer\28e5f.msi
c:\windows\Installer\29471.msi
c:\windows\Installer\2948c.msi
c:\windows\Installer\29492.msi
c:\windows\Installer\2a5a6.msp
c:\windows\Installer\3667e.msp
c:\windows\Installer\36699.msp
c:\windows\Installer\366e2.msp
c:\windows\Installer\366f5.msp
c:\windows\Installer\36709.msp
c:\windows\Installer\3671f.msp
c:\windows\Installer\36732.msp
c:\windows\Installer\36746.msp
c:\windows\Installer\3676c.msp
c:\windows\Installer\36780.msp
c:\windows\Installer\36796.msp
c:\windows\Installer\367ab.msp
c:\windows\Installer\367bf.msp
c:\windows\Installer\367d4.msp
c:\windows\Installer\388b2.msp
c:\windows\Installer\44769.msi
c:\windows\Installer\5cd7d7.msi
c:\windows\Installer\9151ed.msi
c:\windows\Installer\be1af.msi
c:\windows\Installer\fa1487.msi
c:\windows\system32\drivers\kbiwkmgsnvmetq.sys
c:\windows\system32\kbiwkmjtkmoygy.dll
c:\windows\system32\kbiwkmltoieaqb.dll
c:\windows\system32\kbiwkmtjxjdsvx.dat
c:\windows\system32\kbiwkmwulbqlrs.dat
c:\windows\system32\ps2.bat
D:\Autorun.inf
.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.
-------\Service_kbiwkmqubrxlvn
-------\Legacy_kbiwkmqubrxlvn
((((((((((((((((((((((((( Files Created from 2009-08-06 to 2009-09-06 )))))))))))))))))))))))))))))))
.
2009-08-18 21:39 . 2008-10-16 21:13 202776 ----a-w- c:\windows\system32\wuweb.dll
.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2009-09-06 16:44 . 2008-08-19 22:00 -------- d-----w- c:\documents and settings\All Users\Application Data\Google Updater
2009-08-28 21:42 . 2006-03-14 02:59 -------- d-----w- c:\program files\Trend Micro
2009-08-28 21:04 . 2009-08-28 21:04 10752 ----a-w- c:\windows\DCEBoot.exe
2009-08-26 16:23 . 2009-08-26 16:23 -------- d-----w- c:\documents and settings\All Users\Application Data\RegCure
2009-08-26 16:23 . 2009-08-26 16:23 -------- d-----w- c:\program files\RegCure
2009-08-20 23:05 . 2007-02-16 21:35 -------- d-----w- c:\documents and settings\Owner\Application Data\U3
2009-07-31 17:29 . 2004-06-09 13:02 1385744 ----a-w- c:\windows\system32\msvbvm60.dll
.
------- Sigcheck -------
[-] 2004-08-04 . 49911DD39E023BB6C45E4E436CFBD297 . 13824 . . [5.1.2600.2180] . . c:\windows\ServicePackFiles\i386\wscntfy.exe
[-] 2004-08-04 . 49911DD39E023BB6C45E4E436CFBD297 . 13824 . . [5.1.2600.2180] . . c:\windows\SoftwareDistribution\Download\16b2c96a0c41f4dfdb4d3cc228a4f819\wscntfy.exe
[-] 2004-08-04 . EEF46DAB68229A14DA3D8E73C99E2959 . 129536 . . [5.1.2600.2180] . . c:\windows\ServicePackFiles\i386\xmlprov.dll
[-] 2004-08-04 . EEF46DAB68229A14DA3D8E73C99E2959 . 129536 . . [5.1.2600.2180] . . c:\windows\SoftwareDistribution\Download\16b2c96a0c41f4dfdb4d3cc228a4f819\xmlprov.dll
[-] 2004-08-04 07:56 . C086483E3DBA8C1C0A687EC8D5B3D4C1 . 52224 . . [9.0.1.56] . . c:\windows\ServicePackFiles\i386\mspmsnsv.dll
[-] 2004-08-04 07:56 . C086483E3DBA8C1C0A687EC8D5B3D4C1 . 52224 . . [9.0.1.56] . . c:\windows\SoftwareDistribution\Download\16b2c96a0c41f4dfdb4d3cc228a4f819\mspmsnsv.dll
[-] 2002-11-27 09:03 . 36678803A8030EE9A771935CFC1848BD . 52224 . . [9.0.1.56] . . c:\windows\$NtServicePackUninstall$\mspmsnsv.dll
[-] 2002-11-27 09:03 . 36678803A8030EE9A771935CFC1848BD . 52224 . . [9.0.1.56] . . c:\windows\system32\mspmsnsv.dll
c:\windows\system32\wscntfy.exe ... is missing !!
c:\windows\system32\xmlprov.dll ... is missing !!
.
((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-05-29 68856]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TkBellExe"="c:\program files\Common Files\Real\Update_OB\realsched.exe" [2008-10-16 185896]
"SunJavaUpdateSched"="c:\program files\Java\j2re1.4.2_03\bin\jusched.exe" [2004-05-13 32881]
"QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2008-07-19 98304]
"McAfee Backup"="c:\program files\McAfee\MBK\McAfeeDataBackup.exe" [2007-01-16 4838952]
"KBD"="c:\hp\KBD\KBD.EXE" [2003-02-12 61440]
"IgfxTray"="c:\windows\System32\igfxtray.exe" [2004-08-20 155648]
"hpsysdrv"="c:\windows\system\hpsysdrv.exe" [1998-05-07 52736]
"HPDJ Taskbar Utility"="c:\windows\System32\spool\drivers\w32x86\3\hpztsb10.exe" [2004-03-04 172032]
"HP Software Update"="c:\program files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe" [2006-01-14 49152]
"HP Component Manager"="c:\program files\HP\hpcoretech\hpcmpmgr.exe" [2003-12-22 241664]
"HotKeysCmds"="c:\windows\System32\hkcmd.exe" [2004-08-20 118784]
"Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-01-12 39792]
"MBkLogOnHook"="c:\program files\McAfee\MBK\LogOnHook.exe" [2007-01-08 20480]
"SoundMan"="SOUNDMAN.EXE" - c:\windows\SOUNDMAN.EXE [2004-05-03 67584]
"AlcWzrd"="ALCWZRD.EXE" - c:\windows\ALCWZRD.EXE [2004-05-03 2533888]
"Alcmtr"="ALCMTR.EXE" - c:\windows\ALCMTR.EXE [2004-04-27 57344]
"AGRSMMSG"="AGRSMMSG.exe" - c:\windows\AGRSMMSG.exe [2004-06-29 88363]
[HKLM\~\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Microsoft Office.lnk]
path=c:\documents and settings\All Users\Start Menu\Programs\Startup\Microsoft Office.lnk
backup=c:\windows\pss\Microsoft Office.lnkCommon Startup
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"iPodService"=3 (0x3)
"GEARSecurity"=2 (0x2)
S2 mrtRate;mrtRate; [x]
.
Contents of the 'Scheduled Tasks' folder
2009-09-06 c:\windows\Tasks\Google Software Updater.job
- c:\program files\Google\Common\Google Updater\GoogleUpdaterService.exe [2008-05-28 02:54]
2008-01-10 c:\windows\Tasks\McDefragTask.job
- c:\progra~1\mcafee\mqc\QcConsol.exe [2008-07-22 20:32]
2008-07-01 c:\windows\Tasks\McQcTask.job
- c:\progra~1\mcafee\mqc\QcConsol.exe [2008-07-22 20:32]
2009-09-06 c:\windows\Tasks\RegCure Program Check.job
- c:\program files\RegCure\RegCure.exe [2009-06-10 22:28]
2009-09-06 c:\windows\Tasks\RegCure Startup.job
- c:\program files\RegCure\RegCure.exe [2009-06-10 22:28]
2009-08-26 c:\windows\Tasks\RegCure.job
- c:\program files\RegCure\RegCure.exe [2009-06-10 22:28]
.
.
------- Supplementary Scan -------
.
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} - hxxp://download.eset.com/special/eos/OnlineScanner.cab
.
- - - - ORPHANS REMOVED - - - -
AddRemove-HijackThis - c:\documents and settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\GPEZK92R\HijackThis.exe
**************************************************************************
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer,
http://www.gmer.netRootkit scan 2009-09-06 10:46
Windows 5.1.2600 Service Pack 1 NTFS
scanning hidden processes ...
scanning hidden autostart entries ...
scanning hidden files ...
scan completed successfully
hidden files: 0
**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------
- - - - - - - > 'winlogon.exe'(552)
c:\windows\system32\ODBC32.dll
c:\windows\System32\msctfime.ime
- - - - - - - > 'lsass.exe'(608)
c:\windows\System32\dssenh.dll
.
Completion time: 2009-09-06 10:50
ComboFix-quarantined-files.txt 2009-09-06 17:50
Pre-Run: 140,518,387,712 bytes free
Post-Run: 140,731,723,776 bytes free
winxpsp1_en_hom_bf.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP Home Edition" /fastdetect
230 --- E O F --- 2009-08-23 14:54
--------------------------------------
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:57:38 AM, on 9/6/2009
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\McAfee\MBK\MBackMonitor.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\WINDOWS\System32\svchost.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
c:\PROGRA~1\mcafee\msc\mcuimgr.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Documents and Settings\Owner\Desktop\HiJackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/?LinkId=69157R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealOne Player\rpbrowserrecordplugin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll
O2 - BHO: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [McAfee Backup] C:\Program Files\McAfee\MBK\McAfeeDataBackup.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb10.exe
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [MBkLogOnHook] C:\Program Files\McAfee\MBK\LogOnHook.exe
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - Global Startup: Compaq Connections.lnk = C:\Program Files\Compaq Connections\1940576\Program\BackWeb-1940576.exe
O16 - DPF: {7530BFB8-7293-4D34-9923-61A11451AFC5} -
http://download.eset.com/special/eos/OnlineScanner.cabO23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: MBackMonitor - McAfee - C:\Program Files\McAfee\MBK\MBackMonitor.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
--
End of file - 4723 bytes
Edited by sHuFLy, 19 September 2009 - 12:55 PM.